Re: Red Hat vs Debian Linux: overall security
"Uday K. MOORJANI" <[email protected]> Wed, 29 Nov 2006 18:04:11 -0400
| Newsgroups | gmane.comp.security.linux |
|---|---|
| Organization | Médiaserv SARL |
| Message-ID | <[email protected]> |
Hi, As mentioned by other members of the mailing list you have to define your term of security. My experience is that whichever major distro you choose wether be debian or rhel it's all in the policy, you cannot only depend on the security globality of a distro, you have fine grain your research on : - The usage (Web Server etc..) - Public (Internet) or Private (over a LAN or WAN) In general, you should always try to secure the network first, start as low from OSI level as you can, and fine grain further up. Determine the applications (apache, nfs, ftp etc..), and try filter the flow at layer 3. Secure your ssh daemon (PKE, or by filtering with a firewall) Try your best to secure the network level and then move on to the patch management, intrusion detection/prevention etc... -- Sincerely Yours, Uday K. MOORJANI ------------------- MEDIASERV.NET SARL 6,Tour Cécid Place de la Rénovation 97110 POINTE A PITRE GUADELOUPE (F.W.I) -------------------